internal-application

1 article
sort: new top best
clear filter
0 8/10
vulnerability

A blind stored XSS vulnerability was discovered in Google's Invoice Submission Portal on gist-uploadmyinvoice.appspot.com by bypassing front-end PDF file validation through content-type manipulation, allowing arbitrary HTML/JavaScript execution when invoices were viewed by Google employees on googleplex.com. The vulnerability was triggered when uploaded files with modified Content-Type headers were rendered as HTML instead of PDF, executing attacker-controlled JavaScript in the context of an internal Google domain.

Google googleplex.com gist-uploadmyinvoice.appspot.com storage.googleapis.com Thomas Orlita ezXSS
websecblog.com · devanshbatham/Awesome-Bugbounty-Writeups · 22 hours ago · details